首页> 外文期刊>Computers & Security >A progress-sensitive flow-sensitive inlined information-flow control monitor (extended version)
【24h】

A progress-sensitive flow-sensitive inlined information-flow control monitor (extended version)

机译:进度敏感型流量敏感型嵌入式信息流控制监视器(扩展版)

获取原文
获取原文并翻译 | 示例
获取外文期刊封面目录资料

摘要

We present a novel progress-sensitive, flow-sensitive hybrid information-flow control monitor for an imperative interactive language. Progress-sensitive information-flow control is a strong information security guarantee which ensures that a program's progress (or lack of) does not leak information. Flow-sensitivity means that this strong security guarantee is enforced fairly precisely: our monitor tracks information flow per variable and per program point. We illustrate our approach on an imperative interactive language. Our hybrid monitor is inlined: source programs are translated, by a type-based analysis, into a target language that supports dynamic security levels. A key benefit of this is that the resulting monitored program is amenable to standard optimization techniques such as partial evaluation. One of the distinguishing features of our hybrid monitor is that it uses sets of levels to track the different possible security types of variables. This feature allows us to distinguish outputs that never leak information from those that may leak information.
机译:我们提出了一种用于命令式交互语言的新型进度敏感,流量敏感的混合信息流控制监视器。进度敏感的信息流控制是强有力的信息安全保证,可确保程序的进度(或缺少进度)不会泄漏信息。流量敏感性意味着可以相当精确地实施这种强大的安全保证:我们的监视器跟踪每个变量和每个程序点的信息流。我们以命令式交互语言来说明我们的方法。内联我们的混合监视器:通过基于类型的分析将源程序转换为支持动态安全级别的目标语言。这样做的主要好处是,生成的受监视程序适用于标准优化技术,例如部分评估。我们的混合监视器的显着特征之一是它使用一组级别来跟踪变量的不同可能的安全类型。此功能使我们能够区分从不泄漏信息的输出和可能泄漏信息的输出。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号